A use-after-free vulnerability exists in the way Foxit Reader 2024.3.0.26795 handles a 3D page object. A specially craft
A use-after-free vulnerability exists in the way Foxit Reader 2024.3.0.26795 handles a checkbox CBF_Widget object. A spe
Use after free in Compositing in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix use-after-free in device_for_each_ch
In the Linux kernel, the following vulnerability has been resolved: can: hi311x: hi3110_can_ist(): fix potential use-af
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: avoid UAF in btmtk_process_coredu
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Remove cache tags before disabling ATS
A memory allocation check was missing which would lead to a use-after-free if the allocation failed. This could have tri
Memory corruption while running VK synchronization with KASAN enabled.
Memory corruption in Graphics Driver when destroying a context with KGSL_GPU_AUX_COMMAND_TIMELINE objects queued.
Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitt
Memory corruption while invoking IOCTLs calls from user space for internal mem MAP and internal mem UNMAP.
In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: Use after free in __vmbus_open(
Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GP
Memory corruption while invoking HGSL IOCTL context create.
Memory corruption while invoking IOCTLs calls in Automotive Multimedia.
In bigo_unlocked_ioctl of bigo.c, there is a possible UAF due to a missing bounds check. This could lead to local escala
there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no
In BroadcastSystemMessage of servicemgr.cpp, there is a possible Remote Code Execution due to a use after free. This cou
Deno is a JavaScript, TypeScript, and WebAssembly runtime. Starting in version 1.36.2 and prior to version 1.40.3, use o
In the Linux kernel, the following vulnerability has been resolved: sh: push-switch: Reorder cleanup operations to avoi
Memory corruption when there is failed unmap operation in GPU.
Memory corruption in Kernel while handling GPU operations.
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
Memory corruption when the IOCTL call is interrupted by a signal.
In the Linux kernel, the following vulnerability has been resolved: can: peak_pci: peak_pci_remove(): fix UAF When rem
An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos
An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
Memory corruption while handling user packets during VBO bind operation.
Memory request logic vulnerability in the memory module. Impact: Successful exploitation of this vulnerability will affe
Memory corruption when memory mapped in a VBO is not unmapped by the GPU SMMU.
Memory corruption while processing graphics kernel driver request to create DMA fence.
Memory corruption when kernel driver attempts to trigger hardware fences.
Memory corruption when the mapped pages in VBO are still mapped after reclaiming by shrinker.
Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events.
Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaimi
Memory corruption while releasing shared resources in MinkSocket listener thread.
Memory corruption when two threads try to map and unmap a single node simultaneously.
In the Linux kernel, the following vulnerability has been resolved: net: microchip: vcap: Fix use-after-free error in k
Memory corruption while processing user packets to generate page faults.
wasm3 139076a contains a Use-After-Free in ForEachModule.
A race condition exists in a driver potentially leading to a use-after-free condition.
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability
in OpenHarmony v4.0.0 and prior versions allow an adjacent attacker arbitrary code execution in any apps through use a
in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through
A use-after-free vulnerability was found in the QEMU LSI53C895A SCSI Host Bus Adapter emulation. This issue can lead to
Frequently Asked Questions
What is CWE-416?
CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-416?
There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.
How can I protect against CWE-416 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.
Detect CWE-416 Vulnerabilities
CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.
Get Started